Files
CVEs-PoC/2014/CVE-2014-2528.md
T
2025-09-29 21:09:30 +02:00

797 B

CVE-2014-2528

Description

kcleanup.cpp in KDirStat 2.7.3 does not properly quote strings when deleting a directory, which allows remote attackers to execute arbitrary commands via a ' (single quote) character in the directory name, a different vulnerability than CVE-2014-2527.

POC

Reference

Github

No PoCs found on GitHub currently.